Privacy Policy for Shorty Studio

Last Updated: November 19th, 2024

Welcome to Shorty Studio. This Privacy Policy describes how we collect, use, and handle your personal information when you use our website and services for creating AI-generated videos.

1. Contact Information

2. Types of Data Collected

We collect and process the following types of data:

  • Account Data: Name and email address for account management
  • Content Data: Text inputs used to generate videos
  • Generated Content: AI-generated videos, audio, and images
  • Usage Data: Analytics related to video generation and platform usage
  • Billing Information: Handled securely by our merchant of record

3. Purpose of Data Collection

We collect and process data for the following purposes:

  • Account Management: To create and maintain user accounts
  • Service Provision: To generate and deliver AI-generated videos
  • Service Improvement: To enhance our video generation algorithms and user experience
  • Communication: To send service updates and respond to user inquiries
  • Billing: To process payments and maintain subscriptions

4. Data Collection Methods

Data is collected through:

  • User input forms during account registration
  • Text submissions for video generation
  • Automated collection of usage statistics
  • Integration with our payment processor

5. Data Storage and Security Measures

  • Database Provider: Supabase (SOC2 Type 2 and HIPAA compliant)
  • Encryption: All data is encrypted at rest with AES-256 and in transit via TLS
  • Application Security: Sensitive information, including access tokens and API keys, is encrypted at the application level
  • Content Storage: Generated videos and associated content are stored securely with industry-standard protection

6. Data Sharing and Disclosure

We share data with the following third-party service providers:

  • Merchant of Record: For payment processing and billing
  • Supabase: For database management
  • AI Service Providers: For video, audio, and image generation

All service providers are contractually bound to protect user data and comply with privacy regulations.

7. User Rights

Users have the right to:

  • Access their personal data
  • Request data correction or deletion
  • Export their generated content
  • Close their account and delete associated data

To exercise these rights, contact us at kevin@shortystudio.com

8. Cookie Policy

We use essential cookies for:

  • Authentication
  • Session management
  • Security purposes

No third-party tracking cookies are used.

9. Policy for Children

Shorty Studio's services are not intended for users under 13 years of age. We do not knowingly collect or maintain data from children under 13.

10. International Data Transfers

Data may be transferred internationally through our service providers:

  • Payment processor (Lemon Squeezy)
  • Database provider (Supabase)
  • AI service providers

All transfers comply with applicable data protection laws.

11. AI-Generated Content Policy

Regarding AI-generated content:

  • Users retain rights to videos generated using our service
  • We maintain logs of generation requests for service improvement
  • Generated content may be used anonymously to improve our AI models
  • Users can opt out of having their generated content used for AI training

12. Changes to the Privacy Policy

  • Users will be notified of significant changes via email and in-app notifications
  • Continued use of the service after changes constitutes acceptance
  • Previous versions of the policy will be archived and available upon request

13. Effective Date

This policy is effective as of November 19, 2024.

For questions or concerns about our privacy practices, please contact us at kevin@shortystudio.com.

14. Data Retention

We retain different types of data for varying periods:

  • Account data: Until account deletion
  • Generated content: Until account deletion
  • Billing records: As required by law

15. Legal Basis for Processing

We process data based on:

  • Contract fulfillment (service provision)
  • Legal obligations (financial records)
  • Legitimate interests (service improvement)
  • User consent (marketing communications)